{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:165db6a7-037d-575a-980c-b144da44b17c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-el-api",
      "version": "9.0.50-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:2f384ad8-d746-5665-bac9-0dfd8afabce0",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e85db9e-6b37-59bf-8d75-29b4df715509",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a12f6739-c842-5ca3-b93f-5b00b67d0204",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7df3e441-998b-5edd-8d07-86ca0204321a",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:395b4e14-66d9-54ed-bd15-d7e29171c188",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d12748ec-bbd6-5374-8ec7-be3351bc49ba",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d319e385-c791-52d0-ac91-0ae0f9b917ba",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:101ec6ba-66a3-5e91-b0e5-1539a72b623b",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6273ea06-296f-5c2e-8c6e-041fd4ca9580",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cdf0eb4-aa15-576a-872e-05a6a3423b5b",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad94c023-fed4-5f70-9044-e4706d1033bd",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e582abd0-3bb1-5774-90de-accb163df9f5",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:caaa8564-b158-5860-b5a8-3c22b358b3e9",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d98cf22-caea-50ab-82fc-7423161f50b9",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce232ffe-e213-5cf9-bcc0-9738ff96205a",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5a01a62-2bb7-5c8f-b8bf-1e71d73bbd3a",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:491f7aa7-f9b6-507d-aaf4-3abe731bbf19",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c3dcd47-7eea-57ae-ae0a-3e51646307a0",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c8310b0-f825-5ce2-97fa-3d2b98cb16c2",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1047c192-748e-5a93-a092-4334b304f1ec",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:303af83e-3063-53bd-bdb7-dfad80c97d8e",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28d60c39-bc95-550c-b7b9-03b4ad8904ea",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf4a8ee7-b074-5104-b0c6-434a71aeafff",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:481e331f-17b5-598a-97e4-e58f6b690fa1",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fae44256-1298-55a1-b628-5cc3126fc755",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83bb1652-4f99-5798-ba17-b36d83d37ea1",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55eed05a-d76a-5c4d-8e8a-50a477e64d61",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e1fa80e-bb37-59c8-8cc5-69cbbbb3dbf6",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61fd3f1c-e636-57c0-aa7a-0d5df7bd006b",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5525550d-f2e3-5386-a498-0a2b432e8d6a",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43a9b2d3-fa16-5a4e-b680-f53442a74681",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e53cf54b-740f-5fea-a956-8c83312c2eb1",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:856ad962-60d2-505f-b2c7-cf20f46e733f",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31ce0d8d-4a57-50b5-8653-0aa83f3b0ab0",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55e70ecd-d89f-5ba0-80a0-6cce141e620e",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c796191-c87f-5c62-bccb-5cd032258ccc",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:661397b2-f28a-5748-8137-8ea1beb41a55",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c3e0e9f-4fdd-56a7-ac76-730ecbb8cce9",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e7bc892-c5d2-5d70-80cb-e52cf260e8b8",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3df521a-6f6d-5162-ba07-a2fc4984e28a",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b05dbbec-c047-59d5-ab62-9d61f8962de4",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:858c3e21-33d0-5f70-815d-2cb1e1a8db6d",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f230a2f3-0a7b-5e08-995a-14456fee046f",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0510eaf3-87f7-5c8e-b17d-da7a4e5f59a0",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07551e83-de18-56c1-8111-4ef3c85cc2cd",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c0dc7ab-2e82-5d53-933e-e0b58c0d5bf6",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e869fcc-c63c-5e5c-b181-fd3dd5c5e523",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc71a9f3-2d32-535c-ac52-be5dd5de9693",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ad56ab7-0bd0-51ff-a5ad-784c55b1df5d",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94f4d998-8b04-544d-be7e-136fa0e19f6d",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.50-tuxcare.3"
    }
  ]
}